The biannual Netskope Cloud and Threat Report analyses the most interesting trends in the use of cloud services and applications for companies, threats on the web and in the cloud, and migrations and data transfers.
Among the most outstanding conclusions stands out a clear and sustained growth of malware delivered through cloud applications, which now represents 68% of all malware that reaches organizations.
This increase comes against the continued proliferation of cloud applications at the enterprise level, with adoption increasing 22% during the first six months of 2021. According to the latest research from Netskope, a company with between 500 and 2,000 employees uses an average of 805 different applications and cloud services.
Of this total, 97% of these applications are “Shadow IT”; they have not been authorized, nor are they covered and protected by corporate IT teams.
However, the use of unauthorized cloud applications is not the only potential threat identified in the report, indicating the need for increased management of authorized cloud applications and IAAS services. Today, more than a third (35%) of all workloads on AWS, Azure, and Google Cloud Platform are “unrestricted,” meaning they are open to public viewing by anyone on the Internet.
The research authors have also identified an emerging attack opportunity in the widespread use (97%) of Google corporate credentials as a convenient shortcut to login into third-party applications.
When using Google logins as a shortcut, a third-party app asks for several permissions, ranging from “view basic account information” to “view and manage Google Drive files.” Third-party applications that request to view and manage Google Drive files pose a significant threat to corporate data exposure.
“Threat actors strive to stay one step ahead, so we work aggressively to identify potential entry and attack surfaces before can use they can use them regularly and to ensure organizations can safely isolate themselves before a corporate data loss episode,” explains Ray Canzanese, Director of Threat Research at Netskope.
“The research shows that companies need to rethink security based on the reality of using cloud applications. They should favor a security architecture that provides context for apps, cloud services, and web user activity, and applies zero-trust controls to protect data wherever and however it is accessed ».
Drawing:acotuuvra54= harry potter is related to a Harry Potter character art; you can also call…
In this article, we explain what long-tail keywords are and why it is important to…
New Meta updates have arrived that will transform the way we manage and optimize advertising…
Amazon is the most visited marketplace worldwide, standing out from its competitors in terms of…
Although Discovery campaigns on Google Ads have been running for a few years now, we…
Microsoft Advertising is Microsoft's SEM tool that allows you to place text ads on search…